Reading List

A curated Reading List to support and extend learning from Confidentiality and Data Protection for GP Receptionists and Care Navigators.
The sources below cover UK data protection, confidentiality, the Caldicott principles, information sharing and GP practice information governance.
1. Data Protection and Confidentiality
ICO - A guide to the data protection principles
Official guidance on the UK GDPR data protection principles, including lawfulness, fairness, transparency, purpose limitation, data minimisation, accuracy, storage limitation, security and accountability.
https://ico.org.uk/for-organisations/uk-gdpr-guidance-and-resources/data-protection-principles/a-guide-to-the-data-protection-principles/GOV.UK - The UK's data protection legislation
Overview of the UK's data protection framework and the rights available to individuals.
https://www.gov.uk/data-protectionNHS England Digital - Code of practice on confidential information
Practical guidance on handling confidential health and care information within health services.
https://digital.nhs.uk/data-and-information/looking-after-information/data-security-and-information-governance/codes-of-practice-for-handling-information-in-health-and-care/code-of-practice-on-confidential-informationICO - Special category data
Guidance on special category data under UK GDPR, including health data and the extra protections required when processing it.
https://ico.org.uk/for-organisations/uk-gdpr-guidance-and-resources/lawful-basis/special-category-data/
2. Caldicott and Health Information Governance
National Data Guardian - The Caldicott Principles
The eight Caldicott principles for keeping patient information confidential and ensuring appropriate use.
https://www.gov.uk/government/publications/the-caldicott-principlesNational Data Guardian - Caldicott Guardian role and responsibilities
Guidance on appointing Caldicott Guardians and their duties in organisations that process health and care information.
https://www.gov.uk/government/publications/national-data-guardian-guidance-on-the-appointment-of-caldicott-guardians-their-role-and-responsibilitiesNHS England - Consent to using and sharing patient information
Guidance for GP practices on transparency, privacy notices, handling patient objections and sharing patient information appropriately.
https://www.england.nhs.uk/long-read/consent-to-using-and-sharing-patient-information/
3. Records, Safeguarding and Patient Access
NHS England - Safeguarding in GP electronic patient records
Guidance on protecting safeguarding information in GP records, including risks from online and proxy access.
https://www.england.nhs.uk/long-read/safeguarding/GOV.UK - Information sharing advice for safeguarding practitioners
Practical advice on when and how to share information where safeguarding concerns exist, especially for children and vulnerable adults.
https://www.gov.uk/government/publications/safeguarding-practitioners-information-sharing-advice

